What is Authorization Role for Impersonation parameter for in Web Services Properties?
search cancel

What is Authorization Role for Impersonation parameter for in Web Services Properties?

book

Article ID: 251133

calendar_today

Updated On:

Products

CA Identity Suite

Issue/Introduction

Using Identity Manager (IM) Management Console when we go to Environments > <IM Environment Name> > Advance Settings > Web Services page, we have Authorization Role for Impersonation parameter. What is this parameter for?

Environment

Release : 14.3, 14.4

Component : IdentityMinder(Identity Manager)

Resolution

In this Authorization Role for Impersonation parameter we specify an admin role whose members include the intended WSS authenticated users. With this admin role set up, only members of the admin role can be authenticated as WSS users. This admin role also defines what Web Services enabled Tasks can be run.

In the Web Services settings shown in the picture above, admin role named 'impersonation' has been setup. As the member of 'impersonation' admin role is only '<user_id>' user then only '<user_id>' can be WSS authenticated.

Additional Information

To remove this configuration see KB 251135
https://knowledge.broadcom.com/external/article/251135